creativetimofficial / blk-design-system

232 stars 137 forks source link

Vulnerabilities of packages #18

Open adefirmanf opened 4 years ago

adefirmanf commented 4 years ago

Hello team, we find some several issues regarding the vulnerabilities on packages when running npm install

found 8 vulnerabilities (1 low, 6 high, 1 critical)

I concern about the critical one. Could someone update the package.json / package.lock.json ?

adefirmanf commented 4 years ago

Anyway, the .gitignore should be included in the repository. So, node_modules doesn't push to the repository

rarestoma commented 4 years ago

Hi @adefirmanf,

Thank you for working with our products.

We will take a closer look to the packages and update them on our next release. Please run npm audit fix and it should work fine.

I hope it helps.

All the best, Rares